Using SDN technology to solve the method of consistent update of distributed firewall network
A distributed firewall and technology, applied in data exchange networks, digital transmission systems, electrical components, etc., can solve problems such as inability to achieve consistent network updates, complicated ways to update versions, and impact on network security, etc., to achieve consistent updates, The effect of short update time and easy and consistent update
Active Publication Date: 2019-10-18
NANJING UNIV OF SCI & TECH
View PDF3 Cites 0 Cited by
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
If there is no strategy to implement simply, it will affect the security of the network, which is never allowed in the network
[0004] Under the existing technology, if we want to update the network, we must either update the entire network environment in a versioned manner, or power off the devices, and then configure them one by one. The way to update the version is too complicated to manually configure. To achieve consistent updates of the network, although it can continue to be applicable to some application scenarios, it is no longer the mainstream in today's fast-speed and low-latency big data environment
Method used
the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View moreImage
Smart Image Click on the blue labels to locate them in the text.
Smart ImageViewing Examples
Examples
Experimental program
Comparison scheme
Effect test
Embodiment
[0046] In order to facilitate those of ordinary skill in the art to understand the principle of the present invention, the working process, at first the vocabulary used in the present invention is explained or defined as follows:
[0047] SDN: SoftwareDefinedNetwork, software-defined network.
[0048] API: Application Program Interface, application programming interface.
[0049] Xterm: Terminal emulator, used to provide multiple independent SHELL input and output. In order to facilitate more complex debugging work, you can use the Xterms command in Mininet to enable terminal emulation for each host node.
the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More PUM
Login to View More Abstract
The invention discloses a method for solving consistent update of a distributed firewall network through utilization of an SDN (Software Defined Network) technology. According to the method, through utilization of an SDN, a user is supported to define development according to own practical demand; a controller is enabled to issue different flow tables to online switches in a mode of carrying out programming through an API (Application Program Interface), so a step of configuring each switch one by one is removed, influences of update of the configuration in the switches on transmitted data messages and original network security rules are no longer taken into consideration, and the configuration difficulty of distributed firewalls is solved. According to the method, the switches are automatically configured by issuing the flow tables through programming, and the consistent update of the distributed firewalls can be finished.
Description
technical field [0001] The invention relates to software and network technology, in particular to a method for solving the consistent update of distributed firewall networks by using SDN technology. Background technique [0002] In the era of big data where the network scale is growing rapidly, the problem of consistent update of the network is becoming increasingly prominent. Even if we are careful to make the old and new configurations accurate, it will be difficult to implement them correctly. , data packet loss or network congestion and other problems. The main reason is that the network is a distributed system, and it is difficult for algorithms to achieve distributed management. Sometimes network administrators are required to manually verify that a series of updates to the network are correct, but this process is tedious and error-prone. [0003] Usually, the network needs to update the configuration, such as maintenance and upgrading of network equipment, or to pre...
Claims
the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More Application Information
Patent Timeline
Login to View More Patent Type & Authority Patents(China)
IPC IPC(8): H04L29/06H04L12/24
Inventor 王雷钟静连王亮王津言虞伟民陈立方天宇
Owner NANJING UNIV OF SCI & TECH




